HPE FlexNetwork HSR6800 series Command Reference Manual page 26

Comware 7 acl and qos
Hide thumbs Also See for FlexNetwork HSR6800 series:
Table of Contents

Advertisement

Parameters
destination
{ object-group
address-group-name
| dest-address
dest-wildcard | any }
counting
precedence
precedence
tos tos
dscp dscp
fragment
logging
time-range
time-range-name
vpn-instance
vpn-instance-name
If the protocol argument is tcp (6) or udp (7), set the parameters shown in
Function
Specifies a destination
address.
Counts the times that the
rule is matched.
Specifies an IP precedence
value.
Specifies a ToS preference.
Specifies a DSCP priority.
Applies the rule only to
non-first fragments.
Logs matching packets.
Specifies a time range for
the rule.
Applies the rule to an MPLS
L3VPN instance.
21
Description
The address-group-name argument specifies an
object group of destination IP addresses.
The dest-address dest-wildcard arguments specify a
destination IP address and a wildcard mask in dotted
decimal notation. An all-zero wildcard mask
represents a host address.
The any keyword represents any destination IP
address.
The counting keyword enables match counting
specific to rules, and the hardware-count keyword
in the packet-filter command enables match
counting for all rules in an ACL. If the counting
keyword is not specified, matches for the rule are not
counted.
The precedence argument can be a number in the
range of 0 to 7, or in words: routine (0), priority (1),
immediate (2), flash (3), flash-override (4), critical
(5), internet (6), or network (7).
The tos argument can be a number in the range of 0
to 15, or in words: max-reliability (2),
max-throughput (4), min-delay (8),
min-monetary-cost (1), or normal (0).
The dscp argument can be a number in the range of
0 to 63, or in words: af11 (10), af12 (12), af13 (14),
af21 (18), af22 (20), af23 (22), af31 (26), af32 (28),
af33 (30), af41 (34), af42 (36), af43 (38), cs1 (8),
cs2 (16), cs3 (24), cs4 (32), cs5 (40), cs6 (48), cs7
(56), default (0), or ef (46).
If you do not specify this keyword, the rule applies to
all fragments and non-fragments.
This feature requires that the module (for example,
packet filtering) that uses the ACL supports logging.
The time-range-name argument is a case-insensitive
string of 1 to 32 characters. It must start with an
English letter. If the time range is not configured, the
system creates the rule. However, the rule using the
time range can take effect only after you configure
the time range.
For more information about time range, see ACL and
QoS Configuration Guide.
The vpn-instance-name argument is a
case-sensitive string of 1 to 31 characters.
If you do not specify a VPN instance, the rule applies
to both non-VPN packets and VPN packets.
Table
8.

Advertisement

Table of Contents
loading

Table of Contents